CVE-2025-66723
PoC —CVSS 3.1
7.5 high
EPSS
<1%p35
Published
()
Modified
Description
inMusic Brands Engine DJ before 4.3.4 suffers from Insecure Permissions due to exposed HTTP service in the Remote Library, which allows attackers to access all files and network paths.
- Vendors
- inmusicbrands
- Products
- engine dj desktop
- Weakness
- CWE-732
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.